Note on Slopsquatting - Wikipedia via wikipedia.org
Slopsquatting is a type of cybersquatting. It is the practice of registering a non-existent software package name that a large language model (LLM) may hallucinate in its output, whereby someone unknowingly may copy-paste and install the software package without realizing it is fake.[1] Attempting to install a non-existent package should result in an error, but some have exploited this for their gain in the form of typosquatting.
Reference
- Notes
- llm, security, side-effects
- Slopsquatting - Wikipedia
-
Permalink to
2025.NTE.119 - Insight
- Edit
| ← Previous | Next → |
| We shouldn’t have needed lockfiles via Nikita Prokopov (niki@tonsky.me) | Don't Forget: Remote MCP Servers are Just cURL Calls |